Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f3pc-jh8h-4mvw

Опубликовано: 31 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. This is a high severity vulnerability as the exploitation allows an attacker to take complete control of a system, so Dell recommends customers to upgrade at the earliest opportunity.

Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. This is a high severity vulnerability as the exploitation allows an attacker to take complete control of a system, so Dell recommends customers to upgrade at the earliest opportunity.

EPSS

Процентиль: 78%
0.01123
Низкий

8.4 High

CVSS3

Дефекты

CWE-78
CWE-94

Связанные уязвимости

CVSS3: 8.4
nvd
больше 2 лет назад

Dell NetWorker 19.6.1.2, contains an OS command injection Vulnerability in the NetWorker client. A remote unauthenticated attacker could potentially exploit this vulnerability, leading to the execution of arbitrary OS commands on the application's underlying OS, with the privileges of the vulnerable application. This is a high severity vulnerability as the exploitation allows an attacker to take complete control of a system, so Dell recommends customers to upgrade at the earliest opportunity.

EPSS

Процентиль: 78%
0.01123
Низкий

8.4 High

CVSS3

Дефекты

CWE-78
CWE-94